Startup surge sparks spy interest.

Date:

Node: 4961305

Show Notes

This week, we are joined by ⁠Santiago Pontiroli⁠, Threat Intelligence Research Lead from ⁠Acronis⁠ TRU team, discussing their work on “New year, new sector: Transparent Tribe targets India’s startup ecosystem.” The Acronis Threat Research Unit uncovered a new campaign by Transparent Tribe showing the group has expanded beyond traditional government and defense targets to India’s startup ecosystem, especially cybersecurity and OSINT-focused firms.

The attackers use startup-themed lures delivered via ISO files and malicious shortcuts to deploy Crimson RAT, a highly obfuscated tool capable of surveillance, data theft, and system control. Despite this shift, the campaign closely mirrors the group’s long-standing espionage tactics, suggesting startups are being targeted for their connections to government, law enforcement, and sensitive intelligence networks.

The research and executive brief can be found here: